General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! CVE-2013-3893

What is the Vulnerability Signature status?

Microsoft Security Advisory (2887505)

Vulnerability in Internet Explorer Could Allow Remote Code Execution

Published: Tuesday, September 17, 2013

https://technet.microsoft.com/en-us/security/advisory/2887505

dill by Not applicable
  • 3695 Views
  • 6 replies
  • 0 Likes

Active passive to active active mode

I have a pair of PA3020 in active-passive mode within the same datacenter pointing to the same ISP. We are planning to move the standby firewall to the new redundancy site and enable active-active mode pointing to a new redundant ISP. The 2 firewalls

...

forward http request to proxy squid

Hi ,

i try to forward my wifi mobile users http request to the proxy squid.

i have configured the proxy squid to transparant mode (port 80)

To the firewall i have 3 zone : LAN (port 1) , DMZ (port 3)  and INTERNET (port2)

the wifi mobile users are in zon

...

nmaton by Not applicable
  • 5934 Views
  • 6 replies
  • 0 Likes

L2 trunk and subinterfaces to Cisco

I am trying to configure a L2 trunk from a Cisco 3750 to a Palo 5020

I cannot find any info on how to configure the Palo, as the terminology is different to me.

As a side note we are also running two 5020's in an Active/Active configuration

I have tried

...

rperkin by Not applicable
  • 10778 Views
  • 7 replies
  • 0 Likes

Resolved! pass on user-id information

Hi All,

Setup

- We got 2 PA clusters with a leased line between them, joining two offices of the same company.

- Both offices have their own AD, servers, ...

- We have GlobalProtect configured on both devices.

- We have PanOS User-Id configured (so no age

...

mr.linus by L4 Transporter
  • 3181 Views
  • 3 replies
  • 0 Likes

Re-Generating HA-Keys

I was lazy and just imported a configuration from a a other firewall to create a new firewall.

Now i discovered that the HA-Keys are identical (because) I imported the config.

Is there any trick to re-generate them or do i have to factory reset and sta

...

gsteiner by L3 Networker
  • 1883 Views
  • 1 replies
  • 0 Likes

Removing an Object and All Dependencies

Morning,

I am doing some firewall cleanup on our panorama.  We have quite a few devices and I am forced to go through each device group to verify if something exsists locally or shared.  Is there any way through the CLI or Panorama to remove an item a

...

one trust two untrust

If I have two DSL connections, and 10 network segments, is possible configure on a PAN firewall one "trust" zone, tow "untrust" zone and send five segments for each one?

Resolved! Has anyone successfully made 'scribd' ReadOnly Access?

Hello,

   We would like to allow "ReadOnly" access to Scribd hosted content.  I note that there is an application definition called 'scribd-uploading'.

   Has anyone successfully done this by blockign the 'scribd-uploading' application?

Thanks

Art

Art by L3 Networker
  • 2570 Views
  • 1 replies
  • 0 Likes

Resolved! Managing Local Admin Through Panorama Template

So, we are (slowly) transitioning our devices to 5.x code to fully utilize the templates via Panorama.  One of the items I was looking into transitioning is the local admin account.  However, from my testing, I don't know that this is possible.  We h

...

mrsold by Not applicable
  • 4903 Views
  • 3 replies
  • 0 Likes

Resolved! Traffic logged in an interface in down state

This is our scenario:

- A PA-200 with a subinterface tagged with VLAN ID 200.

- Connected to a Cisco Catalyst switch (trunk with VLAN ID 200 allowed).

- It has been working without problems.

Now, we want to divert traffic to a Cisco router with same IP a

...

Panorama Generating Blank Reports

Hey everyone.  Has anyone see an issue where Panorama (VM) is generating blank scheduled reports?  I came into the office this morning, and found that Panorama generated its normal scheduled reports, but they are all blank with no data.  Its not just

...

jholmes by L1 Bithead
  • 5331 Views
  • 3 replies
  • 0 Likes
  • 23560 Posts
  • 106 Subscriptions
Labels